Critical severity9.8NVD Advisory· Published May 1, 2024· Updated Jun 17, 2026
CVE-2023-47212
CVE-2023-47212
Description
A heap-based buffer overflow vulnerability exists in the comment functionality of stb _vorbis.c v1.22. A specially crafted .ogg file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6v1.22+ 1 more
- (no CPE)range: v1.22
- (no CPE)range: = 1.22
- cpe:2.3:a:nothings:stb_vorbis.c:1.22:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5- talosintelligence.com/vulnerability_reports/TALOS-2023-1846nvdExploitThird Party Advisory
- lists.fedoraproject.org/archives/list/[email protected]/message/2MHQQXX27ACLLYUQHWSL3DVCOGUK5ZA4/nvdMailing List
- lists.fedoraproject.org/archives/list/[email protected]/message/2WRORYQ2Z2XXHPX36JHBUSDVY6IOMW2N/nvdMailing List
- lists.fedoraproject.org/archives/list/[email protected]/message/LBIPXOBWUHPAH4QHMVP2AWWAPDDZDQ66/nvdMailing List
- www.talosintelligence.com/vulnerability_reports/TALOS-2023-1846nvd
News mentions
0No linked articles in our index yet.